6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was detected in SourceCodester Simple Forum Discussion System 1.0. This impacts an unknown function of the file /admin_class.php?action=login. Performing manipulation of the argument Username results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
Basic Information
ID
CVE-2025-10100
Source
VulDB
Published
Sep 8, 2025 at 18:02
Affected Product
Vendor
SourceCodester
Product
Simple Forum Discussion System
Version
1.0
Affected Versions
SourceCodester Simple Forum Discussion System 1.0